CVE-2023-51954: Critical severity tenda ax1803 firmware vulnerability
Published Jan 10, 2024
·Updated
Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formSetIptv.
Affected Software
2 affected components
All of the following
Tenda Ax1803 Firmware=1.0.0.1
Tenda ax1803
Event History
Jan 10, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-51954?
CVE-2023-51954 is classified as a high severity vulnerability due to the potential for exploitation via stack overflow.
2
How do I fix CVE-2023-51954?
To mitigate CVE-2023-51954, upgrade the Tenda AX1803 firmware to the latest version that addresses this vulnerability.
3
What does CVE-2023-51954 affect?
CVE-2023-51954 affects the Tenda AX1803 router running firmware version 1.0.0.1.
4
How can CVE-2023-51954 be exploited?
CVE-2023-51954 can be exploited by sending specially crafted input to the iptv.stb.port parameter in the formSetIptv function.
5
Is my device vulnerable to CVE-2023-51954?
If you are using Tenda AX1803 firmware version 1.0.0.1, then your device is vulnerable to CVE-2023-51954.